there's some interesting stuff in this article about how coders often don't recognize that they're fixing a security vulnerability at the time they fix it:

unfortunately, the author is full of themselves, with that all-too-common coderbro attitude of "anyone who doesn't have the exact subset of knowledge that i have, is an idiot, probably maliciously so"

@robey I can't bring myself to read it. How many times does he say "just"?

@robey haha I enjoyed this quote:

"There is a highly effective technique for discovering vulnerabilities [...] searching the bug tracker."

